Research of Analysis and Detection of Scanning Attack of NIDS

CAI Hongmin,WU Naiqi,TENG Shaohua
DOI: https://doi.org/10.3969/j.issn.2095-347x.2007.02.026
2007-01-01
Abstract:This article introduces the theorys and the methods of the detection of port scanning and OS scanning,and put forward a model of detecting port scanning and OS scanning.It can effectively detects many types of attack of scanning,by capturing the network packets and matching the snort rules.In the end,the article introduced the significance and prospect of the model.
What problem does this paper attempt to address?